# Filebeat doesn't parse postgresql csvlog files

**URL:** <https://discuss.elastic.co/t/filebeat-doesnt-parse-postgresql-csvlog-files/167351>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [February 6, 2019, 7:48pm UTC](https://discuss.elastic.co/t/filebeat-doesnt-parse-postgresql-csvlog-files/167351 "2019-02-06T19:48:52Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![yurim](https://avatars.discourse-cdn.com/v4/letter/y/858c86/32.png) [@yurim](https://discuss.elastic.co/u/yurim)\
**Post date:** [February 6, 2019, 7:48pm UTC](https://discuss.elastic.co/t/filebeat-doesnt-parse-postgresql-csvlog-files/167351/1 "2019-02-06T19:48:52Z")

</div>

Hi guys,  
Using 6.5.4 stack. configured filebeat with postgresql module and trying to parse postgres csvlog files into ES and visualize in Kibana. In Kibana filebeat-\* index I can see postgres.log.\* fields (9 of them), but when I do discover I see an error\_message:  
Provided Grok expressions do not match field value: [2019-02-05 08:46:05.740 EST,,,25978,"[host.com:51524](http://host.com:51524)",5c59939d.657a,1,"",2019-02-05 08:46:05 EST,,0,LOG,00000,"connection received: [host=hostname.com](http://host=hostname.com) port=51524",,,,,,,,,"  
here  
postgres@/u01/elk/filebeat$ more modules.d/postgresql.yml

- module: postgresql

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 6, 2019, 7:48pm UTC](https://discuss.elastic.co/t/filebeat-doesnt-parse-postgresql-csvlog-files/167351/2 "2019-03-06T19:48:53Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
